-
"Security and Access Are Top Issues for Data Engineers"Over half (54 percent) of those who participated in Immuta's third annual State of Data Engineering Survey say one of their biggest challenges is securing data with appropriate access rights. While nearly 60 percent believe their organizations should…
-
"New Go-based Zerobot Botnet Exploiting Exploiting Dozens of IoT Vulnerabilities to Expand its Network"Zerobot is a new Go-based botnet that has been observed in the wild spreading by exploiting nearly two dozen security flaws in Internet of Things (IoT) devices and other software. According to Fortinet FortiGuard Labs researcher Cara Lin, the botnet…
-
"Trellix Predicts Heightened Hacktivism and Geopolitical Cyberattacks in 2023"The cybersecurity firm Trellix has released its annual threat predictions report for 2023. Trellix Advanced Research Center forecasts an increase in geopolitically motivated attacks across Asia and Europe, as well as hacktivism driven by tensions between…
-
"New Zealand Government Hit by Ransomware Attack on IT Provider"The New Zealand government recently confirmed being impacted by a ransomware attack on managed service provider (MSP) Mercury IT, which has disrupted businesses and public authorities in the country. Mercury IT is a small business with only 25…
-
"Vast Majority of xIoT Devices Out of Compliance With Industry Best Practices"Phosphorus Labs reported that 99 percent of Extended Internet of Things (xIoT) device passwords violate industry best practices. The study discovered that 68 percent of xIoT devices have high-risk or CVSS scores of 8-10. According to the report, 80…
-
"ChatGPT Shows Promise of Using AI to Write Malware"It can take at least an hour for even the most skilled hackers to write a script to exploit a software vulnerability and infiltrate their target. However, a machine may soon be able to do it in seconds. Brendan Dolan-Gavitt, a computer security…
-
"Over 75 Vulnerabilities Patched in Android With December 2022 Security Updates"Google recently announced the December 2022 Android updates with patches for over 75 vulnerabilities, including multiple critical remote code execution (RCE) flaws. The most severe of the RCE bugs is CVE-2022-20411, an issue in Android’s System…
-
"New Corvus Insurance Data Reveals Ransomware and Fraudulent Funds Transfer Represent More Than Half of All Claims"Corvus Insurance published the findings of its third Corvus Risk Insights Index, which is a compilation of industry trends and data analysis. The findings of the report are drawn from data sources used by Corvus to power its underwriting and risk…
-
"Antwerp's City Services Down After Hackers Attack Digital Partner"Antwerp, Belgium, is working to restore digital services that were disrupted by a cyberattack on its digital provider. The outage has impacted services used by citizens, schools, daycare centers, and law enforcement, all of which have been operating…
-
"Open-Source Tool for Security Engineers Helps Automate Access Reviews"ConductorOne made their identity connectors open-source in a project called Baton, which is available on GitHub. Each connector enables developers to extract, normalize, and interact with workforce identity data such as user accounts, permissions, roles…
-
"Russia's Second-Largest Bank VTB Bank Under DDoS Attack"The state-owned VTB Bank, Russia's second-largest financial institution, has reported the largest Distributed Denial-of-Service (DDoS) attack in its history. The pro-Ukraine collective IT Army of Ukraine has claimed responsibility for the DDoS attacks as…
-
"Russian Hackers Spotted Targeting US Military Weapons and Hardware Supplier"A Russia-connected state-sponsored hacking group has been linked to attack infrastructure that spoofs the Microsoft login page of Global Ordnance, a legitimate US-based military weapons and hardware supplier. Recorded Future attributed the new…
News